@typespec/spector
HighnpmGHSA-7q9c-hpx7-9cwm
What to do
Update @typespec/spector to 0.1.0-alpha.27 or later.
npm install @typespec/spector@0.1.0-alpha.27
An authentication bypass flaw affects the npm package @typespec/spector. Affected versions: <= 0.1.0-alpha.26. Fixed from version 0.1.0-alpha.27. CVSS score 7.5.
What the flaw allows: Restricted access can be obtained without valid credentials.
- Package
- @typespec/spector
- Ecosystem
- npm (JavaScript)
- Class
- Authentication bypass
- Affected versions
- <= 0.1.0-alpha.26
- CVSS
- 7.5
- Published on
- September 4, 2026
Sources
Entry built automatically from the cited security advisory, with no model rewriting. Acknowledged by the organisation or vendor, notified to an authority, or established by two independent sources.